Microsoft - Thehackernews

Microsoft

Coldriver, μ•Œλ €μ§„ μœ„ν˜‘ ν–‰μœ„μžλŠ” λŸ¬μ‹œμ•„μ— 관심이 μžˆλŠ” 단체에 λŒ€ν•œ 자격 증λͺ… λ„λ‚œ ν™œλ™μ— μ°Έμ—¬ν•˜λ©΄μ„œ 탐지 λŠ₯λ ₯을 ν–₯μƒμ‹œμΌ°λ‹€. Microsoft Threat Intelligence νŒ€μ€ Star Blizzard(이전 Seorgium)둜 μΆ”μ ν•˜κ³  있으며, λŒ€μ μ€ μš°ν¬λΌμ΄λ‚˜ κ΄€λ ¨ 개인과 쑰직, 학계, 정보 λ³΄μ•ˆ νšŒμ‚¬ 및 λŸ¬μ‹œμ•„ κ΅­κ°€ 관심사λ₯Ό λͺ©ν‘œλ‘œν•˜κ³  μžˆλ‹€. FSB와 μ—°κ²°λœ Star BlizzardλŠ” Lookalike 도메인을 μ„€μ •ν•œ 기둝을 가지고 있고 ν™œμ„± Si둜 μ•Œλ €μ Έ μžˆλ‹€.

ColdriverλΌλŠ” μœ„ν˜‘ ν–‰μœ„μžλŠ” λŸ¬μ‹œμ•„μ— 관심이 μžˆλŠ” 단체에 λŒ€ν•œ 자격 증λͺ… λ„λ‚œ ν™œλ™μ— μ°Έμ—¬ν•˜λ©΄μ„œ 탐지 λŠ₯λ ₯을 ν–₯μƒμ‹œμΌ°λ‹€. Microsoft Threat Intelligence νŒ€μ€ Star Blizzard(이전 Seorgium)둜 μΆ”μ ν•˜κ³  있고, λŒ€μ μ€ μš°ν¬λΌμ΄λ‚˜ κ΄€λ ¨ 개인과 쑰직, 학계, 정보 λ³΄μ•ˆ νšŒμ‚¬ 및 λŸ¬μ‹œμ•„ κ΅­κ°€ 관심사λ₯Ό λͺ©ν‘œλ‘œν•˜κ³  있으며, FSB와 μ—°κ²°λœ Star BlizzardλŠ” Lookalike 도메인을 μ„€μ •ν•œ 기둝을 가지고 있고 ν™œμ„± Si둜 μ•Œλ €μ Έ μžˆλ‹€.

Microsoft Warns of COLDRIVER’s Evolving Evasion and Credential-Stealing Tactics

COLDRIVER, a known threat, improved detection ability by participating in the stolen activity of credentials for organizations interested in Russia.The Microsoft Threat Intelligence Team is tracking with Star Blizzard (formerly Seorgium), and the Great Aims aims to be interested in individuals, organizations, academics, information security companies and Russian countries related to Ukrainians.STAR Blizzard, connected to FSB, has a record of setting a Lookalike domain and is known as an active SI.

The threat actor called COLDRIVER improved detection ability by participating in the stolen activity of the organization interested in Russia.The Microsoft Threat Intelligence Team is tracking on the Star Blizard (formerly Seorgium), and the alphase aims to be interested in individuals, organizations, academics, information security companies, and Russian countries related to Ukraine, and Star Blizzard connected to FSB is set of Lookalike domain.It has a record and is known as an active SI.

https://thehackernews.com/2023/12/microsoft-warns-of-coldrivers-evolving.html